SākumsSkolaApskats
Monthly threat briefingLatviski

2026. gada jūlijs

This month in Latvia, the main cybersecurity conversations are about the fallout from ransomware at a national-scale company, scammers posing as technical support in messaging apps, and fake invoices sent from compromised mailboxes. Five things every computer user should know.

Publicēts 2026-07-06 · ~3 min · Avoti: CERT.LV un starptautiskie draudu pārskati

  1. 1Ransomware can stop an entire company: a Latvian example

    In June, AS "Latvijas valsts meži" experienced a ransomware incident: systems were taken offline, and public information also pointed to a data leak. In cases like this, everyday work tools become unavailable, and recovery can take days or weeks.

    What to do: Do not open unexpected attachments, and do not ignore suspicious signs. Report them immediately, even if you are not sure. Early reporting is the cheapest defence.

    CERT.LV par LVM incidentu
  2. 2Scammers are asking for Signal and other app recovery keys

    CERT.LV warns about a scheme where a supposedly familiar contact or "support service" asks for a backup key, PIN, or one-time code. Once the key is handed over, the account and conversation history end up in someone else's hands.

    What to do: Recovery keys, PINs, and one-time codes are not support information. They must not be shared with anyone, including "IT support".

    CERT.LV par Signal atslēgu krāpšanu
  3. 3Fraud remains Latvia's largest cyber threat category

    CERT.LV's second-quarter statistics include 673 manually handled incidents and more than half a million warnings sent. By volume, the largest categories are fraud and malicious code, most often fake delivery messages, bank login pages, and invoices with changed payment details.

    What to do: Before making a payment or entering data, check the sender's address and domain. If an invoice shows a changed account number, call the supplier back on a previously known number.

    CERT.LV 2026. Q2 statistika
  4. 4Voice fakes make the "manager call" believable

    European threat reports are recording more cases where attackers use AI voice imitation to rush payments or data handovers. A voice that sounds like a manager is no longer proof.

    What to do: Always verify unusual requests for money or data through a second, previously known channel. Use the phrase: "I will check this according to procedure and call back."

    ENISA Threat Landscape
  5. 5An unexpected MFA approval means someone is trying to break in

    If a login approval appears on your phone and you did not request it, someone has most likely entered your password and is waiting for you to approve out of habit. Approving it "just to stop the notifications" means letting the attacker into the account.

    What to do: Reject unexpected approvals, change the password for the affected account, and report it to the responsible person. It takes two minutes.

    Verizon DBIR par nozagtiem akreditācijas datiem
Šis ir publiskais apskata piemērs. Komanda un Uzņēmums plānos darbinieki šo saņem e-pastā katru mēnesi ar personisku saiti, un vadītājs uzskaitē redz, kurš ir iepazinies.Skatīt plānus